Your message dated Thu, 07 Aug 2025 17:02:29 +0000
with message-id <[email protected]>
and subject line Bug#1110254: fixed in openssl 3.0.17-1~deb12u2
has caused the Debian Bug report #1110254,
regarding libssl3: segfault in libcrypto.so.3
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)


-- 
1110254: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1110254
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: libssl3
Version: 3.0.17-1~deb12u1
Severity: normal
X-Debbugs-Cc: [email protected], [email protected]

Dear Maintainer,

After upgrading openssl and its related packages (this one) from version
3.0.16-1~deb12u1 to 3.0.17-1~deb12u1 my sabnzbdplus package crashed on a
restart.

I saw errors like the following:

sabnzbdplus: segfault at 7fc2ec116 ip 00007fc2f68af8d0 sp
00007fc25a7f35b0 error 4 in libcrypto.so.3[7fc2f66c5000+27c000] likely
on CPU 2 (core 0, socket 0)
kernel: Code: 51 ff ff ff e8 41 d7 e1 ff 90 55 53 48 83 ec 08 48 85 ff
0f 84 81 00 00 00 48 89 fb 48 8b 07 48 8b 7f 10 48 83 7b 08 00 74 60
<ff> 90 c0 00 00 00 48 83 7b 08 00 89 c5 74 46 48 8b 7b 40 48 8b 35

kernel: traps: sabnzbdplus[3456936] general protection fault
ip:7f99f2eaf8d0 sp:7f99587ef5b0 error:0 in
libcrypto.so.3[7f99f2cc5000+27c000]

The openssl packages were the only change.
On re-installing the older 3.0.16-1~deb12u1 packages again, sabnzbdplus
could start again.

-- System Information:
Debian Release: 12.11
  APT prefers stable-updates
  APT policy: (990, 'stable-updates'), (990, 'stable-security'), (990, 
'stable'), (600, 'testing'), (500, 'testing-security')
Architecture: amd64 (x86_64)

Kernel: Linux 6.1.0-21-amd64 (SMP w/4 CPU threads; PREEMPT)
Locale: LANG=en_AU.UTF-8, LC_CTYPE=en_AU.UTF-8 (charmap=UTF-8), 
LANGUAGE=en_AU:en
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

Versions of packages libssl3 depends on:
ii  libc6  2.36-9+deb12u10

libssl3 recommends no packages.

libssl3 suggests no packages.

-- no debconf information

--- End Message ---
--- Begin Message ---
Source: openssl
Source-Version: 3.0.17-1~deb12u2
Done: Sebastian Andrzej Siewior <[email protected]>

We believe that the bug you reported is fixed in the latest version of
openssl, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Sebastian Andrzej Siewior <[email protected]> (supplier of updated 
openssl package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Tue, 05 Aug 2025 09:09:41 +0200
Source: openssl
Architecture: source
Version: 3.0.17-1~deb12u2
Distribution: bookworm
Urgency: medium
Maintainer: Debian OpenSSL Team <[email protected]>
Changed-By: Sebastian Andrzej Siewior <[email protected]>
Closes: 1110254
Changes:
 openssl (3.0.17-1~deb12u2) bookworm; urgency=medium
 .
   * Revert the following upstream changes to avoid crashes in downstream
     software:
     - 7141330fb98ce ("Drop "by store"'s by_store_subject_ex()")
     - 340383f5f49f8 ("Rework the "by store" X509_LOOKUP method to open the 
given URI early")
     - a468bdb02531e ("Add test_verify tests")
     Closes: #1110254
Checksums-Sha1:
 1ddc7164ba255c98070584b88d5cd4bc6478adb0 2675 openssl_3.0.17-1~deb12u2.dsc
 43dfa463caab92d57abb4a931dfb4395c0a425b6 55224 
openssl_3.0.17-1~deb12u2.debian.tar.xz
Checksums-Sha256:
 8eff0f04976f65df9a00507f286c18f42644d73124e3844258f037ff47c4f6cf 2675 
openssl_3.0.17-1~deb12u2.dsc
 e5b4c3e1b9caad2da53572fe2b4c7ce027ec17e778630f342d194608472d52f1 55224 
openssl_3.0.17-1~deb12u2.debian.tar.xz
Files:
 529888671a6ac5ed84bf8523de6cca50 2675 utils optional 
openssl_3.0.17-1~deb12u2.dsc
 83aa2692c4e3bc3f0ce5cecf113c5cd2 55224 utils optional 
openssl_3.0.17-1~deb12u2.debian.tar.xz

-----BEGIN PGP SIGNATURE-----

iQIzBAEBCgAdFiEEZCVGlf/wqkRmzBnme5boFiqM9dEFAmiRrtAACgkQe5boFiqM
9dHfHA/+Plww8t8pT15G8D9Fw4/Fc1iPLSCvH258ZrmNznHZ7+BX5uGxxk+NXWBm
mhdwX0FwzdRywGAAFwJjiVccZy38btZz2y5KoqfB31VRTzfacipopU3k9bmzZzlI
4Xk5dKUllww4dILw362bAFdInmE3eOdUX1qPw/4M+XrDV5Z4D2bU80C0KwEyqXfc
RcBRzrd+LKsnkffwgJSsAU9v8m58KWQ9bcYuIL6u3hfCyt+TCxJSYyqCjMvVAeQS
ckGIyVdlLvhMOLzT744ifViG8x5brzzkll7YamcaDqtFGtxxTTRif4m9G6u/MGDi
i2EUQOr9ai62PO8eeYVIAuVFuQXHQ0O9w+TEfYixsTQ+7NUl4hVraOhawI/ghPWr
q3XC2BsfCDUbTbGqSY98EkSHxAR8W56ltSNORFQtKuNeQrRMz6KSNVgk6CfC9B92
q9JyTE+n3Gt5j9vzzKj3rnJzAUmdr1i8aBc7vMo1WuRuaG3OU39JiK3ux7J/V3Ax
tGsEFwgrDwPFregTV0hF4uMi+Te8Awzq9VbWxC7PZOkc0XrKwIFuKNJ9M79T/W+/
t3BqlftcQHsAoUDNrNZc2B6XKcbeyUoUhfyw1Mctv+/UN5MTLCD3qkw4rmKrpFlK
3v0IEJZsWE+D7xhIhYVS9nHQc3tPo+20bhD/pK8rcN64GucO8rE=
=gUuc
-----END PGP SIGNATURE-----

Attachment: pgpOsfe_ZSQvG.pgp
Description: PGP signature


--- End Message ---

Reply via email to